Lucene search

K
ubuntucveUbuntu.comUB:CVE-2008-3837
HistorySep 24, 2008 - 12:00 a.m.

CVE-2008-3837

2008-09-2400:00:00
ubuntu.com
ubuntu.com
28

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.045

Percentile

92.6%

Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, and SeaMonkey before
1.1.12, allow user-assisted remote attackers to move a window during a
mouse click, and possibly force a file download or unspecified other
drag-and-drop action, via a crafted onmousedown action that calls
window.moveBy, a variant of CVE-2003-0823.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchfirefox<ย 1.5.dfsg+1.5.0.15~prepatch080614e-0ubuntu3UNKNOWN
ubuntu7.04noarchfirefox<ย 2.0.0.17+0nobinonly-0ubuntu0.7.4UNKNOWN
ubuntu7.10noarchfirefox<ย 2.0.0.17+1nobinonly-0ubuntu0.7.10UNKNOWN
ubuntu8.04noarchfirefox<ย 2.0.0.17+1nobinonly-0ubuntu0.8.04.1UNKNOWN
ubuntu10.04noarchfirefox<ย 3.0.3+build1+nobinonly-0ubuntu0.8.04.1UNKNOWN
ubuntu10.10noarchfirefox<ย 3.0.3+build1+nobinonly-0ubuntu0.8.04.1UNKNOWN
ubuntu11.04noarchfirefox<ย 3.0.3+build1+nobinonly-0ubuntu0.8.04.1UNKNOWN
ubuntu8.04noarchfirefox-3.0<ย 3.0.3+build1+nobinonly-0ubuntu0.8.04.1UNKNOWN
ubuntu8.10noarchfirefox-3.0<ย 3.0.3+build1+nobinonly-0ubuntu1UNKNOWN
ubuntu9.04noarchfirefox-3.0<ย 3.0.3+build1+nobinonly-0ubuntu1UNKNOWN
Rows per page:
1-10 of 231

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.045

Percentile

92.6%